Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stored XSS issue was discovered in Archer Platform 6 before version 2024.06. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application. 6.14 P4 (6.14.0.4) is also a fixed release.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
Vulnerability Type
N/A
Vulnerability Title
Archer Platform 安全漏洞
Vulnerability Description
Archer Platform是Archer公司的一个现代综合风险管理解决方案。 Archer Platform 6 2024.06之前版本存在安全漏洞,该漏洞源于容易受到存储型跨站脚本攻击,攻击者将恶意代码存储在受信任的应用程序数据存储中,当用户通过浏览器访问时,恶意代码会在易受攻击的应用程序环境中由Web浏览器执行。
CVSS Information
N/A
Vulnerability Type
N/A